Privacy Policy for Flower Delivery Tooting Bec Customers
Introduction
This Privacy Policy outlines how Flower Delivery Tooting Bec collects, processes, stores, and protects personal data of all customers placing orders in Tooting Bec and the surrounding districts. In handling your information, we comply with the General Data Protection Regulation (GDPR) and any applicable data protection laws. This policy informs you about your rights and how you can exercise them regarding your personal information.
Who This Policy Applies To
This policy applies to any individual who places Flower Delivery Tooting Bec orders from Tooting Bec and nearby areas, whether the orders are placed online, by phone, or in person.
What Personal Data We Collect
To provide our flower delivery services, we collect and process the following categories of personal data:
- Identification Data: Your full name and, when applicable, the recipient’s name.
- Contact Information: Delivery address, billing address, and contact phone numbers.
- Order Details: Details of products purchased, delivery instructions, messages for recipients, and purchase history.
- Payment Information: We process payment details necessary for order completion, though we do not permanently store full payment card numbers on our systems.
- Communication Data: Records of your correspondence and communications with us, including queries, complaints, and feedback.
- Technical Data: Device, browser information, IP address, and usage data for our website, collected through cookies or similar technologies (where consented).
Lawful Basis for Processing
We process your personal data only where a lawful basis exists, as defined under GDPR:
- Contractual necessity: To fulfil the order you have placed and deliver flowers as requested.
- Legal compliance: To comply with financial, accounting, and other legal obligations.
- Legitimate interests: For customer service, fraud prevention, and to improve our services, provided your fundamental rights do not override these interests.
- Consent: Where we collect data for marketing, cookies, or promotional purposes, we do so with your explicit consent, which can be withdrawn at any time.
How We Use Your Data
We use your personal information for purposes including:
- Processing and delivering your flower orders and managing payments.
- Communicating with you regarding orders, deliveries, and customer service requests.
- Fulfilling legal, accounting, and regulatory requirements.
- Improving our website, services, and customer experience.
- Sending you marketing communications when you have opted in.
Data Retention
We retain personal data only for as long as necessary for the purposes for which it was collected, or as required by applicable laws.
- Order and transaction records are generally kept for up to six (6) years for tax and accounting compliance.
- Communications and correspondence are retained for up to two (2) years.
- Marketing consent and preferences are kept until you withdraw your consent or opt-out.
- Technical data such as cookies are retained in accordance with our cookie practices and regulatory requirements.
Data Processors and Third Parties
To deliver our services efficiently, we use trusted third-party data processors, who may have access to personal data solely for the purpose of performing tasks on our behalf. These include:
- Payment service providers: To process your payments securely.
- Delivery couriers: To deliver your orders to the requested address.
- IT service providers: For website hosting, maintenance, and email communication systems.
- Marketing services: Only when you have given consent for marketing communications.
All third-party processors are required, by written agreement, to process your information solely according to our instructions and in compliance with applicable data protection laws. We do not sell, trade, or share your personal data for purposes outside service delivery and legitimate business needs.
International Data Transfers
If we transfer personal data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as contractual clauses approved by the European Commission, to protect your information.
Your Data Protection Rights
Under GDPR, you have the following rights regarding your personal information:
- Right of Access: Request access to the personal data we hold about you.
- Right to Rectification: Request correction of incorrect or incomplete data.
- Right to Erasure: Request deletion of your data, subject to legal and contractual obligations.
- Right to Restrict Processing: Request restriction of the processing of your data.
- Right to Data Portability: Receive your data in a structured, commonly used format and/or request it be transferred to another provider.
- Right to Object: Object to processing where we rely on legitimate interests, or to direct marketing.
- Right to Withdraw Consent: Where processing is based on your consent, you can withdraw it at any time. This does not affect processing prior to withdrawal.
How to Exercise Your Rights
You may exercise your rights free of charge by making a written request. We may need to verify your identity before fulfilling certain requests. We aim to respond within one month, though complex or multiple requests may require more time, in compliance with GDPR.
Children's Privacy
Our services are not intended for children under the age of 16, and we do not knowingly collect personal data from children. If you believe we hold information about a child, please contact us so we can remove it promptly.
Changes to This Privacy Policy
We may update this Privacy Policy to reflect changes in legal requirements or our data processing activities. All updates will be posted on this page with the revised effective date. We encourage you to review this policy regularly to remain informed about how your data is protected.
Contact and Further Information
If you have questions about this Privacy Policy, the ways in which we process your personal information, or wish to exercise your data rights, please contact our customer service team. We are committed to protecting your privacy and providing transparent information regarding your data.